CWE-204

Observable Response Discrepancy

Parent: CWE-203 - Observable Discrepancy

The product provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.

148 vulnerabilities with CWE-204
CVE-2025-58442 MEDIUM
Saleor <3.21.16 - Info Disclosure
CVSS 5.3
CVE-2025-9824 MEDIUM
Form Login - Info Disclosure
CVSS 5.9
CVE-2025-9109 LOW
Portabilis i-Diario <1.5.0 - Info Disclosure
CVSS 3.7
CVE-2025-46390 HIGH
Product - Info Disclosure
CVSS 7.5
CVE-2025-54834 MEDIUM
OPEXUS FOIAXpress PAL <11.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-52899 MEDIUM
Tuleap <16.9.99.1750843170, <16.8-4, <16.9-2 - Info Disclosure
CVSS 5.3
CVE-2025-54129 MEDIUM
HAXiam <11.0.4 - Info Disclosure
CVSS 4.3
CVE-2025-27451 MEDIUM
Endress meac300-fnade4 Firmware <= 0.16.0 - Username Enumeration via Different Error Messages
CVSS 5.3
CVE-2025-3092 HIGH
Unprotected Endpoint - Info Disclosure
CVSS 7.5
CVE-2025-5485 HIGH
Web Management Interface - Info Disclosure
CVSS 8.6
CVE-2025-49187 MEDIUM
Sick Field Analytics - Username Enumeration via Different Error Messages
CVSS 5.3
CVE-2025-0163 MEDIUM
IBM Security Verify Access Appliance & Docker <10.0.9 - Info Disclo...
CVSS 5.3
CVE-2025-3939 MEDIUM
Tridium Niagara - Cryptanalysis
CVSS 5.3
CVE-2025-48015 LOW
Product - Info Disclosure
CVSS 3.7
CVE-2025-46736 MEDIUM
Umbraco <10.8.10, <13.8.1 - Info Disclosure
CVSS 5.3
CVE-2025-24342 MEDIUM
ctrlX OS - Info Disclosure
CVSS 5.3
CVE-2025-30150 MEDIUM
Shopware 6 - Info Disclosure
CVSS 5.3
CVE-2025-30280 MEDIUM
Mendix Runtime <10.21.0, 10.12.16, 10.18.5, 10.6.22, 8.18.35, 9.24....
CVSS 5.3
CVE-2025-31124 MEDIUM
Zitadel < 2.63.9 - Information Disclosure
CVSS 5.3
CVE-2025-2910 MEDIUM
MeetMe <2024-09 - Info Disclosure
CVE-2025-24023 LOW
Dpgaspar Flask-appbuilder < 4.5.3 - Information Disclosure
CVSS 3.7
CVE-2025-1101 MEDIUM
Q-Free MaxTime <= 2.11.0 - Info Disclosure
CVSS 5.3
CVE-2025-23193 MEDIUM
SAP NetWeaver Server ABAP - Info Disclosure
CVSS 5.3
CVE-2025-24980 MEDIUM
Pimcore <1.7.4 - Info Disclosure
CVSS 5.3
CVE-2025-0693 MEDIUM
AWS Sign-in < unknown - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 148